Share via

Multi-Site Active Directory Sync

Anonymous
2021-10-29T09:56:17+00:00

Hello All,

I have created 4 Active Directory Domain Controllers both in different locations. One is in Delhi and Another one in Mumbai.

Delhi has 2 domain controllers Primary(DDC01) and Secondary(DDC02).

Mumbai has 2 domain controllers Primary(MDC01) and Secondary(MDC02).

Both have different networks and I can take the RDP of both Domain controllers from different locations.

Now I want to connect all 4 Domain Controllers so they can replicate the data and policies.

I saw this can be done through Active Directory Site and Services.

I Added Subnet's of Both Sites in Mumbai DC i.e. MDC01

I created Sites such as Mumbai-HO and Delhi-BO in MDC01 it got replicated to MDC02.

I could see MDC01 and MDC02 but I cannot see any of the DDC01 or DDC02 showing there.

I am checked all the Active Directory ports are opened between both Sites.

Please find the list of ports below: -

UDP Port 88 for Kerberos authentication UDP and TCP Port 135 for domain controllers-to-domain controller and client to domain controller operations. TCP port 139 and UDP 138 for File Replication Service between domain controllers. UDP Port 389 for LDAP to handle normal queries from client computers to the domain controllers. TCP and UDP Port 445 for File Replication Service TCP and UDP Port 464 for Kerberos Password Change TCP ports 3268 and 3269 for Global Catalog from client to domain controller. TCP and UDP Port 53 for DNS from client to domain controller and domain controller to the domain controller.

Am I missing something?

Just FYI... DDC01 and DDC02 are having different gateways due to some reason.

Windows for home | Other | Apps

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

1 answer

Sort by: Most helpful
  1. DaveM121 891.1K Reputation points Independent Advisor
    2021-10-29T10:28:53+00:00

    Hi Prateek,

    I am Dave, I will help you with this.

    I apologize, Community is just a consumer forum, due to the scope of your question (Active Directory) can you please post this question to our sister forum on Microsoft Q&A (The IT Pro Forum)

    Over there you will have access to a host of Active Directory and IT Pro experts and will get a knowledgeable and quick answer to this question.

    https://docs.microsoft.com/en-us/answers/index....

    Was this answer helpful?

    0 comments No comments